important · Zero-click — Edge
Cisco confirms active exploitation of one-email root execution on Secure Email Gateway.
Affects
Cisco Secure Email Gateway, physical and virtual email-security appliances running Cisco AsyncOS.
A crafted message delivered to an affected physical, virtual, or Cisco-hosted gateway is parsed without authentication or recipient interaction; malicious SQL reaches operating-system command execution as root.
Detail and 1 source
Cisco publishes fixed release boundaries, and post-exploitation access can include cluster SSH keys or removal of local evidence.